Open source tool maker Grafana Labs says hackers stole its code, refuses to pay ransom
AI-summarised brief · reviewed before publication
Grafana Labs, a maker of open source web visualization software, was hacked through a stolen token credential, allowing access to its GitLab environment and source code repositories. The hackers demanded payment to prevent the release of the codebase, but the company refused, citing the FBI's advice against paying hackers. The token did not access customer records or financial data, and the company has added security measures to prevent a repeat incident. Grafana's code is open source, so the theft may not have significant implications. The company's investigation is ongoing, and it will share its findings once concluded, within a complex cybersecurity landscape.
💡 Why It Matters
- · Refusing to pay the ransom sets Grafana apart from other hacked companies, like Instructure, which recently paid hackers to prevent data release.
- · By not paying, Grafana avoids potentially funding future cyberattacks.